Confessions of the QSA: An Introduction to the Payment Card Industry Data Security Standard

 

As most in the industry know, a QSA must get certified by the PCI Security Standards Security Council to audit merchants for Payment Card Industry Data Security Standard (PCI DSS) compliance. Created in 2004 by major credit card brands, such as Visa and American Express, the council acts as a form of self-regulation.

So, how did Weaver become an expert on PCI, and what types of solutions does it offer its clients?

On this episode of Weaver: Beyond The Numbers, host Tyler Kern talked with Trip Hillman, Director of Cyber Security Services at Weaver, and Kyle Morris, Manager of IT at Advisory Services at Weaver. The trio dug into insights from Weaver’s Quality Security Assessor and explored how Weaver dove headfirst into PCI.

The PCI DSS applies to organizations that store, process, transmit or could affect the security of cardholder data. Companies that fall under this standard could do a variety of things, such as an annual self-assessment questionnaire, or bring in a third-party, independent QSA to do a full-blown report on compliance audit.

Morris is a QSA and started at Weaver about eight years ago. A few years into his career, they had a client, a service provider, start getting asked by their customers if they knew anything about PCI and the report on compliance. At the time, they hadn’t done anything with it, but decided to figure it out. That morphed into Weaver diving headfirst into PCI.

“We help people with self-assessment questionnaires or SAQs and everything from full-on ROCs for Fortune 50 Cloud Providers to small merchants to SaaS solutions,” Morris said.

Follow us on social media for the latest updates in B2B!

Image

Latest

employee education
Employee Education Drives Workforce and Business Growth
January 22, 2025

The landscape of employee education and workforce development is undergoing rapid disruption. Employers are stepping in to bridge the skills gap, offering education as a benefit to attract and retain talent while addressing critical workforce needs. With U.S. student loan debt reaching $1.77 trillion as of late 2024, corporations are innovating to provide employees…

Read More
provider networks
Market-Based Planning, Specialization and Technology To Shape Healthcare Provider Networks for Tomorrow
January 22, 2025

The evolving healthcare landscape demands that provider networks strike a careful balance between meeting community needs and maintaining financial sustainability. As patient demographics shift and technological advancements, such as telehealth, redefine care delivery, health systems must recalibrate their networks to avoid inefficiencies. A 2024 AAMC study highlights this urgency, projecting a shortage of up…

Read More
Javier Vera
Mentoring Newcomers, Building Meaningful Relationships, and Shaping the Future of Port Technology with Javier Vera
January 21, 2025

When it comes to the world of ports and logistics, few names carry as much goodwill as Javier Vera. With over 20 years of experience, a commanding presence in Long Beach, and connections spanning the industry, Javier has built his career through relentless networking and community involvement. With California pushing towards electrification in transportation,…

Read More
virtual simulation
Boxlight’s Virtual Simulation: Exploring Elementary Geometry
January 21, 2025

In today’s digital age, educational technology is transforming the way we approach learning, making it more interactive, engaging, and effective. One such innovative solution is Boxlight’s 3D virtual simulation kits, aiming to revolutionize elementary geometry lessons. A Complementary Path for K-5 Geometry Keeping in mind the K-5 geometry curriculum standards, Boxlight has an extensive…

Read More